LEGAL
Privacy
How ClanPilot handles account, gameplay, and optional provider data.
Data we process
Supabase provides account authentication. ClanPilot stores the Clash accounts you link, clan observations, settings, and product records needed to operate the features you use. Base screenshots and resulting attack plans are stored so you can review and manage them.
Analysis and providers
Before the first Attack Coach request, ClanPilot asks for affirmative permission to send the selected gameplay screenshot, attack preferences, and relevant Clash unit context to OpenAI. Your email is not included. The acceptance version and time are recorded with the analysis. Optional integrations may retrieve public data from Supercell, ClashKing, War Report, Discord, and the official YouTube Data API. Provider data remains attributed and may be incomplete or delayed.
Your controls
You can delete saved analyses, disconnect Discord, sign out, and use the in-app account controls. For account or data help, use the official support workflow.
Uploads
Do not upload screenshots containing real names, private photos, sensitive chat messages, or other personal information unrelated to gameplay analysis.
ClanPilot Chat safety
ClanPilot applies automated screening to clear categories of prohibited content. Users can report messages and block another user from their own chat experience. Authorized moderators may review reported content and limited surrounding context, then warn, restrict, or ban an abusive account.
Account deletion
You can request account deletion in the iOS app. ClanPilot immediately restricts normal account access, provides a 30-day recovery period, and then automatically removes the authentication account, associated database records, and user-owned uploaded files. During the recovery period, sign in to access the dedicated cancellation screen.
Controlled beta
When you apply for the controlled beta, ClanPilot collects the name and TestFlight invitation email you provide, device family, iOS version, optional region, Clash role and interests, application answers, and your verified Discord identity. ClanPilot checks whether that identity belongs to the official community and has completed Discord's membership screening. ClanPilot stores the agreement version, content hash, effective date, acceptance time, source, locale, and a limited user-agent family. ClanPilot does not request your Apple Account password, UDID, device serial number, or full hardware identifier.
Apple TestFlight and Discord
For approved applicants, ClanPilot sends the supplied invitation email and name to Apple through the supported App Store Connect API and stores safe Apple tester, group, app, build, and invitation-status identifiers. Discord identity and community-membership state are used for application eligibility and review, private status commands, Beta Tester role assignment, and best-effort notifications. Apple and Discord process data under their own policies.
Private Discord support
If you open a private Discord support ticket, ClanPilot stores your Discord identity, intake category and answers, ticket status, assigned support identity, and safe lifecycle/audit records. The conversation takes place in a permission-restricted Discord channel visible to you and the ClanPilot owner/team. ClanPilot does not monitor ordinary Discord messages through a Gateway or request Message Content intent. Do not submit passwords, verification codes, API tokens, private keys, payment details, or other unnecessary sensitive information.
Beta retention
Application, agreement-acceptance, invitation, and audit records are retained while access is pending or active and afterward as reasonably needed for security, legal, and program administration. Revocation does not erase immutable agreement evidence. Contact support for a privacy or deletion request; mandatory records may be retained where legally required.
Unofficial product
ClanPilot is unofficial and is not endorsed by Supercell.